Épisodes

  • I'm Worried That We're Not Worried About the Right Worries With AI
    Dec 9 2025

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Mike Johnson, CISO, Rivian. Joining them is their sponsored guest, Danny Jenkins, CEO, ThreatLocker.

    In this episode:

    • AI for AI's sake
    • Stop selling, start protecting
    • Stop calling everything sophisticated
    • Least privilege, rebranded

    Huge thanks to our sponsor, ThreatLocker

    ThreatLocker makes Zero Trust practical. With Default Deny, Ringfencing, and Elevation Control, CISOs get real control that's easy to manage and built to scale. Stop threats before they execute and reduce operational noise without adding complexity. See how simple prevention can be at ThreatLocker.com/CISO.

    Voir plus Voir moins
    40 min
  • You Can't Fall Behind in AI if You Never Start
    Dec 2 2025

    All links and images can be found on CISO Series.

    This week's episode is hosted by me, David Spark, producer of CISO Series, and Mike Johnson, CISO, Rivian. Joining us is John Barrow, CISO, JB Poindexter & Co.

    In this episode:

    • Building unicorns, not hunting them
    • Cold War frameworks for modern threats
    • Trading dollars for stories
    • Mirror, mirror on the wall

    Huge thanks to our sponsor, Vanta

    Vanta automates key areas of your GRC program—including compliance, risk, and customer trust—and streamlines the way you manage information. A recent IDC analysis found that compliance teams using Vanta are 129% more productive. Get back time to focus on strengthening security and scaling your business at vanta.com/ciso

    Voir plus Voir moins
    35 min
  • Why Architect for Human Error When We Can Make People Feel Really Bad About It?
    Nov 25 2025

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Andy Ellis (@csoandy), principal of Duha. Joining them is Richard Rushing, CISO, Motorola Mobility.

    In this episode

    • Mindset over tools
    • When hygiene becomes risk
    • Systems for actual humans
    • Conversations over compliance

    Huge thanks to our sponsor, ThreatLocker

    ThreatLocker® Defense Against Configurations continuously scans endpoints to uncover misconfigurations, weak firewall rules, and risky settings that weaken defenses. With compliance mapping, daily updates, and actionable remediation in one dashboard, it streamlines hardening, reduces attack surfaces, and strengthens security. Learn more at threatlocker.com.
    Voir plus Voir moins
    39 min
  • Are You Implying This Line Graph Isn't a Compelling Cybersecurity Narrative?
    Nov 18 2025

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Andy Ellis (@csoandy), principal of Duha. Joining them is our sponsored guest, Nathan Hunstad, director, security, Vanta.

    In this episode:

    • Metrics that matter
    • Testing for real
    • AI as an assistant
    • Intelligence without context

    Huge thanks to our sponsor, Vanta

    Vanta automates key areas of your GRC program—including compliance, risk, and customer trust—and streamlines the way you manage information. A recent IDC analysis found that compliance teams using Vanta are 129% more productive. Get back time to focus on strengthening security and scaling your business at vanta.com/ciso

    Voir plus Voir moins
    41 min
  • Our CISO Certainly Puts the Tool in Multi-Tool (LIVE in LA)
    Nov 11 2025

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Jeff Steadman, deputy CISO, Corning Incorporated. Joining them is Quincey Collins, CSO, Sheppard Mullin. This episode was recorded live at the ISSA LA Summit in Santa Monica, California.

    In this episode:

    • The foundational debate
    • Strength over breadth
    • Beyond traditional backgrounds
    • Keeping perspective on risk

    Huge thanks to our sponsors, Adaptive Security and Dropzone AI

    AI-powered social engineering threats like deepfake voice calls, GenAI phishing, and vishing attacks are evolving fast. Adaptive helps security leaders get ahead with an AI-native platform that simulates realistic genAI attacks, and delivers expert-vetted security awareness training — all in one unified solution. Learn more at adaptivesecurity.com.

    Dropzone AI autonomously investigates every security alert—no playbooks needed. This AI SOC analyst queries your CrowdStrike, Splunk, threat intel feeds, and 60+ other tools to build complete investigations in 5 minutes. Unlike black-box automation, it shows every query, finding, and decision. See it work yourself—explore the self-guided demo at dropzone.ai.

    Voir plus Voir moins
    45 min
  • I Don't Just Guess About Effectiveness, I Make Educated Guesses!
    Nov 4 2025

    All links and images can be found on CISO Series.

    This week's episode is hosted by me, David Spark, producer of CISO Series and Andy Ellis (@csoandy), principal of Duha. Joining us is Sara Madden, CISO, Convera.

    In this episode:

    • Optimizing for reality, not idealism
    • Engineering governance instead of monitoring compliance
    • When AI finds what humans miss
    • The measurement problem

    Huge thanks to our sponsor, ThreatLocker

    Human error remains one of the top cybersecurity threats. Just one wrong click can open the door to ransomware or data loss. With ThreatLocker, unauthorized apps, scripts, and devices are blocked before they can ever run. See how ThreatLocker can help you gain more control over your environment. https://threatlocker.com
    Voir plus Voir moins
    39 min
  • It's a Little Hard to Evaluate New Solutions When You're Screaming "AI" at Me All the Time (Live in Houston)
    Oct 28 2025

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Jerich Beason, CISO, WM. Joining them on stage is Jack Leidecker, CISO, Gong. This episode was recorded live at HOU SEC CON 2025.

    In this episode:

    • The open source sustainability problem
    • AI levels the geopolitical playing field
    • Cutting through AI vendor hype
    • Why the fundamentals still hurt

    Thanks to Erik Bloch from Illumio for providing our "What's Worse" scenario.

    Huge thanks to our sponsor, Vorlon Security

    SaaS data moves fast—Vorlon gives security teams the context to move faster. Vorlon combines posture and secrets management, data flow visibility, and detection and response —
so you can see the full picture: what's connected, what's at risk,
and what needs immediate action. Learn more at https://vorlon.io/

    Voir plus Voir moins
    44 min
  • Dear Abby: Why Should I Trust a Vendor Selling Me Zero Trust?
    Oct 21 2025

    All links and images can be found on CISO Series.

    This week's episode is hosted by David Spark, producer of CISO Series and Dan Walsh, CISO, Datavant. Joining them is our sponsored guest, Rob Allen, chief product officer, ThreatLocker.

    In this episode:

    • When EDR gets knocked out
    • Red flags in vendor theater
    • Configuration chaos
    • The sticker problem

    Huge thanks to our sponsor, ThreatLocker

    ThreatLocker® Defense Against Configurations continuously scans endpoints to uncover misconfigurations, weak firewall rules, and risky settings that weaken defenses. With compliance mapping, daily updates, and actionable remediation in one dashboard, it streamlines hardening, reduces attack surfaces, and strengthens security. Learn more at threatlocker.com.

    Voir plus Voir moins
    30 min